AbdulRhmanAlfaifi / Fennec
Artifact collection tool for *nix systems
☆192Updated 8 months ago
Related projects ⓘ
Alternatives and complementary repositories for Fennec
- A python script developed to process Windows memory images based on triage type.☆258Updated 11 months ago
- An easy to use PowerShell script to collect memory and disk forensics for DFIR investigations.☆270Updated 2 months ago
- Implementation of RITA (Real Intelligence Threat Analytics) in Jupyter Notebook with improved scoring algorithm.☆194Updated 2 years ago
- Rules generated from our investigations.☆189Updated 3 weeks ago
- Open Source Platform for storing, organizing, and searching documents related to cyber threats☆157Updated last year
- Repository of public reference frameworks for the DFIR community.☆109Updated last year
- This script is made to collect the most valiable artifacts for foreniscs or incident reponse investigation rather than imaging the whole …☆193Updated 4 years ago
- A repository of my own Sigma detection rules.☆156Updated 2 months ago
- Detection Ideas & Rules repository.☆178Updated 3 years ago
- Automated YARA Rule Standardization and Quality Assurance Tool☆166Updated this week
- The Threat Hunting In Rapid Iterations (THIRI) Jupyter notebook is designed as a research aide to let you rapidly prototype threat huntin…☆153Updated 2 years ago
- Repository of attack and defensive information for Business Email Compromise investigations☆230Updated 2 months ago
- Forensic Artifact Collection Tool Matrix☆75Updated last week
- A curated list of KAPE-related resources☆156Updated 6 months ago
- The Volatility Collaborative GUI☆227Updated this week
- Docker image for Velocidex Velociraptor☆113Updated 4 months ago
- MISP Playbooks☆174Updated last month
- A Jupyter notebook to assist with the analysis of the output generated from Volatility memory extraction framework.☆94Updated last year
- BlackBerry Threat Research & Intelligence☆93Updated last year
- Russia / Ukraine 2022 conflict related IOCs from CERT Orange Cyberdefense Threat Intelligence Datalake☆174Updated last year
- Some Threat Hunting queries useful for blue teamers☆123Updated 2 years ago
- Blueteam operational triage registry hunting/forensic tool.☆142Updated last year
- SubCrawl is a modular framework for discovering open directories, identifying unique content through signatures and organizing the data w…☆144Updated last year
- This guide describes a process for developing Cyber Threat Intelligence Priority Intelligence Requirements☆116Updated 11 months ago
- Tools for simulating threats☆177Updated last year
- Resources To Learn And Understand SIGMA Rules☆168Updated last year
- Invoke-Forensics provides PowerShell commands to simplify working with the forensic tools KAPE and RegRipper.☆109Updated 11 months ago
- Harness the power of Splunk for your investigations☆77Updated this week
- ☆1Updated 3 weeks ago
- Curated Windows event log Sigma rules used in Hayabusa and Velociraptor.☆144Updated this week